Using Suricata-Update on OPNSense

Updated 2024-12-06: Updated both scripts, using newer suricata-update from get-go, updated classification.config, some minor adjusting of content. Updated 2024-12-18: Corrected a typo in ‘suricatamod.sh‘, there was an extra space in two places Updated 2024-12-19: As of OPNSense 24.7.11_2 we should have access to the latest ‘suricata-update‘ feature and you should not need to do the…

OPNSense and Enabling Suricata Rules

Update: This guide covers using OPNSense’s native Policy based Rule management, you can also use ‘suricata-update‘ to do similar, if not more, focused/tailored Rule management. If you are interested, please see our post about enabling the modification here Using Suricata-Update on OPNSense OPNSense is an Open Source FreeBSD router, firewall, and has a modern Suricata…

Secure Your OPNSense Router With CrowdSec Multi-Server Setup

This post will be edited over time, please feel free to come back and check for new content. Last edit: 11-25-2024 Goal: A HomeLab setup that protects itself This example HomeLab has at its core an OPNSense Router, smart switches with subnet zones, several VMs, a few Docker environments, and specifically for this version of…